Earlier quoted context omitted.
Insecurity through obscurity is possible even in open source. See log4j, but there are other examples — and infinite proof of concepts of people breaching repositories. Even on the desktop, you want multiple layers of security to limit potential damage. Do use Linux on the desktop and be happy if it makes you happy, but don’t smugly assume you’re immune to the outside pressures in today’s world that are causing Apple…
Well yes but Linux has had solutions for this a long time. AppArmor, SELinux. Some distros like RHEL already bundle apps with profiles that make sure the app can only do what it's supposed to do.
Also it is totally not fit for the "ask user for permission" model.